Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on all allows SQL Injection. Arbitrary SQL queries were allowed to be executed using any account with low privileges. This issue affects Pandora FMS: from 700 through 774.
History

Thu, 17 Apr 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: PandoraFMS

Published:

Updated: 2025-04-17T20:18:40.276Z

Reserved: 2023-09-25T08:33:09.669Z

Link: CVE-2023-44088

cve-icon Vulnrichment

Updated: 2024-08-02T19:52:11.916Z

cve-icon NVD

Status : Modified

Published: 2023-12-29T12:15:43.883

Modified: 2024-11-21T08:25:12.677

Link: CVE-2023-44088

cve-icon Redhat

No data.